Aroundme vulnerabilities
3 known vulnerabilities affecting aroundme/aroundme.
Total CVEs
3
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2006-5401P3HIGHCVSS 7.5PoC≤ 0.5.2v0.5.12006-10-18
CVE-2006-5401 [HIGH] CVE-2006-5401: PHP remote file inclusion vulnerability in template/barnraiser_01/p_new_password.tpl.php in AROUNDMe
PHP remote file inclusion vulnerability in template/barnraiser_01/p_new_password.tpl.php in AROUNDMe 0.5.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the templatePath parameter.
nvd
CVE-2009-4264P3MEDIUMCVSS 6.8PoCv0.5.1v0.5.2+1 more2009-12-10
CVE-2009-4264 [MEDIUM] CWE-94 CVE-2009-4264: PHP remote file inclusion vulnerability in components/core/connect.php in AROUNDMe 1.1 and earlier,
PHP remote file inclusion vulnerability in components/core/connect.php in AROUNDMe 1.1 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the language_path parameter.
nvd
CVE-2006-5533P4MEDIUMCVSS 5.1≤ 0.6.92006-10-26
CVE-2006-5533 [MEDIUM] CVE-2006-5533: Multiple PHP remote file inclusion vulnerabilities in AROUNDMe 0.6.9, and possibly earlier, when reg
Multiple PHP remote file inclusion vulnerabilities in AROUNDMe 0.6.9, and possibly earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the templatePath parameter in template/barnraiser_01/pol_view.tpl.php and other unspecified PHP scripts, a different vector than CVE-2006-5401.
nvd